Closed timoles closed 7 months ago
Thanks for the submission!
Does a valid response for this vulnerability always contain a 200 response code? If so, adding an additional clause to your if... then
statement can mean that we can only perform the "expensive" regex match when necessary.
BCheck to detect a csrf-magic backdoor.
References:
BCheck Contributions
Example output for finding:
Overview
Request
Response